疑似Oday
A reflected cross-site scripting (XSS) vulnerability was discovered in ChurchCRM via the 'username' parameter in /session/begin.
id: churchcrm-xss
info:
name: ChurchCRM - Cross-Site Scripting
author: pikpikcu
severity: med
...